M
metalgecko
Hi everyone,
I'm trying to help a friend who's having problems on WinXP. There are two
issues, which are probably related.
(1) AVG keeps reporting that it's finding three problems, but can't get rid
of them:
-Trojan horse rootkit-agent.di
-psw.online-games_r.de
-win32/heur (two instances)
(2) All network interfaces have stopped working. In Device Manager, they
show up with the little yellow exclamation mark thingy on them, and Windows
reports "Cannot load driver for this device (code 39)". The 'Troubleshoot'
button doesn't do anything. All attempts so far to re-install the network
device drivers have led back to the same situation.
My approach so far has been to try and shift the infections first, but the
problem is that without network access, the utilities that I've tried
(including ATF Cleaner and MalwareBytes) won't run, because they expect to be
able to update themselves from the Internet, which without a working network
interface they can't do. We've also tried running winsock.fix to see if that
would get one of the network connections back, and it didn't.
I'm going over to my friend's house on Saturday to take a look at it, so if
anyone has any ideas as to how we can get one of the network interfaces
working again or how we can shift these infections without needing to connect
to the Internet, I'd be very grateful for any suggestions.
I don't know too much about the PC off the top of my head, but if memory
serves I think it's a Fujitsu Siemens, about three years old (Pentium 4
maybe), with an on-board Ethernet port (Via Rhine 2, I think) and a wireless
card, don't know which make/model.
Thanks
J.
I'm trying to help a friend who's having problems on WinXP. There are two
issues, which are probably related.
(1) AVG keeps reporting that it's finding three problems, but can't get rid
of them:
-Trojan horse rootkit-agent.di
-psw.online-games_r.de
-win32/heur (two instances)
(2) All network interfaces have stopped working. In Device Manager, they
show up with the little yellow exclamation mark thingy on them, and Windows
reports "Cannot load driver for this device (code 39)". The 'Troubleshoot'
button doesn't do anything. All attempts so far to re-install the network
device drivers have led back to the same situation.
My approach so far has been to try and shift the infections first, but the
problem is that without network access, the utilities that I've tried
(including ATF Cleaner and MalwareBytes) won't run, because they expect to be
able to update themselves from the Internet, which without a working network
interface they can't do. We've also tried running winsock.fix to see if that
would get one of the network connections back, and it didn't.
I'm going over to my friend's house on Saturday to take a look at it, so if
anyone has any ideas as to how we can get one of the network interfaces
working again or how we can shift these infections without needing to connect
to the Internet, I'd be very grateful for any suggestions.
I don't know too much about the PC off the top of my head, but if memory
serves I think it's a Fujitsu Siemens, about three years old (Pentium 4
maybe), with an on-board Ethernet port (Via Rhine 2, I think) and a wireless
card, don't know which make/model.
Thanks
J.